Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

Coinbase agents are bribed, data ~ 1% of users were traced; Attempted extortion of $ 20 million will not succeed

May 15, 2025

NPM malicious package uses Unicode Steganography, Google Calendar as C2 Chroper

May 15, 2025

Russia related to APT28, exploited by Mdaemon Zero-Day to crack up web-shaped servers

May 15, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » Researchers warn of flaws in widely used industrial gas analysis equipment
Global Security

Researchers warn of flaws in widely used industrial gas analysis equipment

AdminBy AdminJuly 7, 2024No Comments3 Mins Read
Industrial Gas Analysis Equipment
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


June 28, 2024Information hallIndustrial Security / Critical Infrastructure

Equipment for industrial gas analysis

Multiple security vulnerabilities have been discovered in Emerson Rosemount gas chromatographs that could be exploited by attackers to obtain sensitive information, cause a denial of service (DoS) condition, and even execute arbitrary commands.

The vulnerabilities affect the GC370XA, GC700XA, and GC1500XA and are present in versions 4.1.5 and earlier.

According to operational technology (OT) security firm Claroty, the vulnerabilities turn on two command injection flaws and two separate authentication and authorization vulnerabilities that could be used by unauthenticated attackers to perform a wide variety of malicious activities, from authentication bypass to command injection.

“Successful exploitation of these vulnerabilities could allow an unauthenticated attacker with network access to execute arbitrary commands, access sensitive information, cause a denial of service condition, and bypass authentication to gain administrative privileges,” the US Cybersecurity and Infrastructure Security Agency (CISA) notes. ) said in a recommendation published in January.

Cyber ​​security

The chromatograph, which is used to make critical gas measurements, can be configured and controlled using a software called MON. The software can also be used to store important data and generate reports such as chromatograms, alarm history, event logs and maintenance logs.

Equipment for industrial gas analysis

Analysis of the firmware and proprietary protocol used to communicate between the device and a Windows client called Claroty MES2020 found the following flaws –

  • CVE-2023-46687 (CVSS Score: 9.8) – An unauthenticated user with network access can execute arbitrary commands in root context from a remote computer
  • CVE-2023-49716 (CVSS Score: 6.9) – An authenticated user with network access can execute arbitrary commands from a remote computer
  • CVE-2023-51761 (CVSS Score: 8.3) – An unauthenticated user with network access can bypass authentication and gain administrative privileges by resetting the associated password
  • CVE-2023-43609 (CVSS Score: 6.9) – An unauthenticated user with network access could gain access to sensitive information or cause a denial of service condition

After responsible disclosure, Emerson did released (PDF) updated version of the firmware that fixes the vulnerabilities. The company also recommends that end users follow cybersecurity best practices and ensure that affected products are not directly exposed to the Internet.

Cyber ​​security

Disclosure is as Nozomi Networks in detail several flaws in the AiLux RTU62351B that can be abused to access confidential resources on the device, change its configuration, and even achieve the execution of arbitrary commands as root. These vulnerabilities are collectively known as I11USION.

There were also security flaws identified in Proges Plus temperature monitoring devices and related software, namely Sensor Net Connect and Thermoscan IP, which may allow administrative privileges on critical medical systems, thereby allowing attackers to manipulate system settings, install malware, and steal data.

Left unpatched, these vulnerabilities can also lead to a DoS state in medical monitoring infrastructure, leading to the corruption of temperature-sensitive drugs and vaccines.

Did you find this article interesting? Follow us Twitter  and LinkedIn to read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

Coinbase agents are bribed, data ~ 1% of users were traced; Attempted extortion of $ 20 million will not succeed

May 15, 2025

NPM malicious package uses Unicode Steganography, Google Calendar as C2 Chroper

May 15, 2025

Russia related to APT28, exploited by Mdaemon Zero-Day to crack up web-shaped servers

May 15, 2025

Testing the handle only to meet the requirements? Time to change your approach

May 15, 2025

5 BCDR Essentials for Effective Rushing

May 15, 2025

New Chrome vulnerability allows for a cross -out data leak through a forklift policy

May 15, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

Coinbase agents are bribed, data ~ 1% of users were traced; Attempted extortion of $ 20 million will not succeed

May 15, 2025

NPM malicious package uses Unicode Steganography, Google Calendar as C2 Chroper

May 15, 2025

Russia related to APT28, exploited by Mdaemon Zero-Day to crack up web-shaped servers

May 15, 2025

Testing the handle only to meet the requirements? Time to change your approach

May 15, 2025

5 BCDR Essentials for Effective Rushing

May 15, 2025

New Chrome vulnerability allows for a cross -out data leak through a forklift policy

May 15, 2025

Bion and Ransomexx Exploit SAP Netweaver Nafice for deploying Pipemagic Trojan

May 14, 2025

Samsung Patches Cve-2025-4632 used to deploy Mirai Botnet via Magicinfo 9 Exploit

May 14, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Coinbase agents are bribed, data ~ 1% of users were traced; Attempted extortion of $ 20 million will not succeed

May 15, 2025

NPM malicious package uses Unicode Steganography, Google Calendar as C2 Chroper

May 15, 2025

Russia related to APT28, exploited by Mdaemon Zero-Day to crack up web-shaped servers

May 15, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.